On enabling EFI runtime services on Macs with the T2 security chip, kernel fails to boot due panics in the T2 security chip. Using efi=noruntine (or noefi) as a kernel parameter seems to fix the issue. Also, making NVRAM read-only makes kernels boot.
Created attachment 300256 [details] Proposed patch by Ard Biesheuvel fixes the issue Proposed patch by Ard Biesheuvel fixes the issue